NSE7 Dumps

NSE7 Free Practice Test

Fortinet NSE7: NSE7 Enterprise Firewall - FortiOS 5.4

QUESTION 11

Examine the following traffic log; then answer the question below.
date-20xx-02-01 time=19:52:01 devname=master device_id="xxxxxxx" log_id=0100020007 type=event subtype=system pri critical vd=root service=kemel status=failure msg="NAT port is exhausted."
What does the log mean?

Correct Answer: B

QUESTION 12

Examine the output from the ‘diagnose vpn tunnel list’ command shown in the exhibit; then answer the question below.
NSE7 dumps exhibit
Which command can be used to sniffer the ESP traffic for the VPN DialUP_0?

Correct Answer: B

QUESTION 13

An administrator cannot connect to the GIU of a FortiGate unit with the IP address 10.0.1.254. The administrator runs the debug flow while attempting the connection using HTTP. The output of the debug flow is shown in the exhibit:
NSE7 dumps exhibit
Based on the error displayed by the debug flow, which are valid reasons for this problem? (Choose two.)

Correct Answer: AC

QUESTION 14

A FortiGate device has the following LDAP configuration:
NSE7 dumps exhibit
The administrator executed the ‘dsquery’ command in the Windows LDAp server 10.0.1.10, and got the following output:
>dsquery user –samid administrator
“CN=Administrator, CN=Users, DC=trainingAD, DC=training, DC=lab” Based on the output, what FortiGate LDAP setting is configured incorrectly?

Correct Answer: A

QUESTION 15

An administrator has configured a FortiGate device with two VDOMs: root and internal. The administrator has also created and inter-VDOM link that connects both VDOMs. The objective is to have each VDOM advertise some routes to the other VDOM via OSPF through the inter-VDOM link. What OSPF configuration settings must match in both VDOMs to have the OSPF adjacency successfully forming? (Choose three.)

Correct Answer: BDE